Description
encoded_id-rails versions before 1.0.0.beta2 are affected by an uncontrolled resource consumption vulnerability. A remote and unauthenticated attacker might cause a denial of service condition by sending an HTTP request with an extremely long "id" parameter.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-2632 | encoded_id-rails versions before 1.0.0.beta2 are affected by an uncontrolled resource consumption vulnerability. A remote and unauthenticated attacker might cause a denial of service condition by sending an HTTP request with an extremely long "id" parameter. |
Github GHSA |
GHSA-3px7-jm2p-6h2c | encoded_id-rails potential DOS vulnerability due to URIs with extremely long encoded IDs |
References
History
Wed, 18 Jun 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2025-06-18T15:43:39.641Z
Reserved: 2024-01-04T18:44:55.210Z
Link: CVE-2024-0241
Updated: 2024-08-01T17:41:16.398Z
Status : Modified
Published: 2024-01-04T21:15:09.267
Modified: 2025-06-18T16:15:26.000
Link: CVE-2024-0241
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA